SAML Request Body

The SAML Request Body must consists of the following:

  • SAML Request must have MicrosoftOnline as the intended audience

  • Username in the request must be replaced by the $username$ placeholder

  • Password in the request must be replaced by $password$ placeholder

The following is an example of a SAML Request Body:

Authorization Endpoint: https://<YOUR_DOMAIN>/adfs/services/trust/2005/usernamemixed

SAML Request:

<s:Envelope xmlns:s='' 
  <s:Header><a:Action s:mustUnderstand='1'>
        <a:To s:mustUnderstand='1'>https://<YOUR_DOMAIN>/adfs/services/trust/2005/usernamemixed</a:To>
          <o:Security s:mustUnderstand='1' 
            <o:UsernameToken u:Id='uuid-<user’s object id>'>
            <trust:RequestSecurityToken xmlns:trust=''>
            <wsp:AppliesTo xmlns:wsp=''>